🔒 Closed HELP!!! svhost.exe at DLL.exe running background by user VIRUS paano tangalin

Status
Not open for further replies.

PHC-HEsh

Established
1626840737338.webp

tumatakbo toh sa backgroud digital signature sha256
nahanap ko na eto yung virus nag extract ng passwords ko sa MSedge at sinend sa ip na 192.168.X.X nanag open ng LOgin page namay user na "sha256"

1626840852253.webp
 
Because svchost.exe is a common process in the Task Manager, malware programs sometimes mask themselves by running under the same process name of svchost.exe. Other times, a malware program may run, or inject, its service into an already running svchost.exe process. In either case, this masking action can make it difficult to detect and remove these malware programs.
The easiest way to see if your computer is infected with malware running under the “Svchost.exe” name, is to open your Windows Task Manager by pressing CTRL + ALT + DEL on your keyboard,
the right-click on the Svchost.exe which you suspect is malware, and then click on “Open file location
Svchost-exe-infection.webp

The SvcHost.exe from Windows should be located in the C:\Windows\System32 folder. Any file named “svchost.exe” located in other folder can be considered as a malware.

Kung iba ang location niyan. Malamang virus na iyan.
 
Status
Not open for further replies.

About this Thread

  • 6
    Replies
  • 406
    Views
  • 3
    Participants
Last reply from:
PHC-HEsh

Trending Topics

Online now

Members online
734
Guests online
664
Total visitors
1,398

Forum statistics

Threads
2,275,554
Posts
28,964,019
Members
1,231,861
Latest member
james_1923
Back
Top